CVE-2008-0673

TinTin++ 1.97.9 and WinTin++ 1.97.9 open files on the basis of an inbound file-transfer request, before the user has an opportunity to decline the request, which allows remote attackers to truncate arbitrary files in the top level of a home directory.
Severity
UNKNOWN
AV:N/AC:L/Au:N/C:P/I:P/A:P
Atk. Vector
NETWORK
Atk. Complexity
LOW
Base Score
CVSS 3.x
EPSS Score
Percentile: 89%
VendorProductVersion
tintintintin\+\+
1.97.9
tintinwintin\+\+
1.97.9
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
tintin++
bullseye
2.02.03-1
fixed
etch
no-dsa
bookworm
2.02.20-1
fixed
sid
2.02.20-1
fixed
trixie
2.02.20-1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
tintin++
karmic
Fixed 1.97.9-2
released
jaunty
Fixed 1.97.9-2
released
intrepid
Fixed 1.97.9-2
released
hardy
Fixed 1.97.9-2
released
gutsy
ignored
feisty
ignored
edgy
ignored
dapper
ignored